CVE-2017-16852 -- libshibsp-devID: oval:org.secpod.oval:def:1900280 | Date: (C)2019-03-22 (M)2023-12-20 |
Class: VULNERABILITY | Family: unix |
shibsp/metadata/DynamicMetadataProvider.cpp in the Dynamic Metadata Provider plugin in Shibboleth Service Provider before 2.6.1 fails to properly configure itself with the Metadata Filter plugins and does not perform critical security checks such as signature verification, enforcement of validity periods, and other checks specific to deployments, aka SSPCPP-763.
Platform: |
Ubuntu 16.04 |
Ubuntu 14.04 |